<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title><![CDATA[iRedMail — Urgent: Security fix of iRedAPD-1.3.2 and earlier versions]]></title>
		<link>http://www.iredmail.org/forum/topic1120-urgent-security-fix-of-iredapd132-and-earlier-versions.html</link>
		<atom:link href="http://www.iredmail.org/forum/feed-rss-topic1120.xml" rel="self" type="application/rss+xml" />
		<description><![CDATA[The most recent posts in Urgent: Security fix of iRedAPD-1.3.2 and earlier versions.]]></description>
		<lastBuildDate>Fri, 30 Jul 2010 07:33:27 +0000</lastBuildDate>
		<generator>PunBB</generator>
		<item>
			<title><![CDATA[Urgent: Security fix of iRedAPD-1.3.2 and earlier versions]]></title>
			<link>http://www.iredmail.org/forum/post4862.html#p4862</link>
			<description><![CDATA[<p>Hi, all.</p><p>There&#039;s a security vulnerability in iRedAPD-1.3.2 and earlier versions, all users are strongly encouraged to upgrade iRedAPD to 1.3.3.</p><h5>Issue description</h5><p>Quote from rizkiwicaksono:<br />&quot;When plugins got loaded by iredAPD, it automatically compiles source .py files into .pyc files for faster loading in the future. But unfortunately the compiled file permission is world writable (666 mode). Since iredAPD run as root (root privilege for iredapd is too much), attacker can replace PYC plugins file with maliciously crafted PYC files to execute code with root privilege.&quot;</p><p>&quot;Attacker can prepare malicious PYC file on his own test box, then upload it to victim box and replace the original pyc file with his own.&quot;</p><h5>Steps used to fix it</h5><p>The simpliest way to fix it is installing iRedAPD-1.3.3 (not upgrade).</p><p>- Download iRedAPD-1.3.3 directly: <a href="http://iredmail.googlecode.com/files/iRedAPD-1.3.3.tar.bz2">http://iredmail.googlecode.com/files/iR … .3.tar.bz2</a><br />- Installation Guide (for OpenLDAP backend): <a href="http://iredmail.org/wiki/index.php?title=Install/iRedAPD/OpenLDAP">http://iredmail.org/wiki/index.php?titl … D/OpenLDAP</a></p><h5>Credits</h5><p>Thanks to rizkiwicaksono for his report, YouTube video, and code contribution. <img src="http://www.iredmail.org/forum/img/smilies/smile.png" width="15" height="15" alt="smile" /></p>]]></description>
			<author><![CDATA[null@example.com (ZhangHuangbin)]]></author>
			<pubDate>Fri, 30 Jul 2010 07:33:27 +0000</pubDate>
			<guid>http://www.iredmail.org/forum/post4862.html#p4862</guid>
		</item>
	</channel>
</rss>
